[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250108

 
 

909

 
 

196064

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-5087-1 cyrus-sasl2 -- cyrus-sasl2

ID: oval:org.secpod.oval:def:78392Date: (C)2022-03-29   (M)2023-01-09
Class: PATCHFamily: unix




It was discovered that the SQL plugin in cyrus-sasl2, a library implementing the Simple Authentication and Security Layer, is prone to a SQL injection attack. An authenticated remote attacker can take advantage of this flaw to execute arbitrary SQL commands and for privilege escalation.

Platform:
Linux Mint 4
Product:
cyrus-sasl2-doc
libsasl2-2
libsasl2-dev
libsasl2-modules
sasl2-bin
Reference:
DSA-5087-1
CVE-2022-24407
CVE    1
CVE-2022-24407

© SecPod Technologies